t-mobile[.]mvbgp[.]cc
“Welcome to nginx!”
Сводка доказательств
This domain is flagged as an elevated-risk brand impersonation threat designed to deceive users of X.com. Analysis indicates the infrastructure is specifically engineered to mimic the legitimate platform, likely for credential theft or unauthorized account access. The domain exhibits multiple indicators of malicious intent, including its recent creation and association with known phishing tactics. Infrastructure analysis reveals the domain t-mobile.mvbgp.cc was registered on January 28, 2026, through Gname.com Pte. Ltd. It resolves to the IP address 172.67.192.25, hosted on Cloudflare’s network (AS13335). The SSL certificate is issued by Google Trust Services (WE1), a common tactic to lend superficial legitimacy. Security vendors on VirusTotal flagged the domain 16 out of 95 times, and it appears on at least one security blocklist, specifically PhishDestroy. The page title, 'Welcome to nginx!', suggests a generic or misconfigured server setup, often seen in hastily deployed phishing infrastructure. Mitigation steps for this brand impersonation threat include immediately blocking the domain and its associated IP address across network security controls. Users who may have interacted with the domain should reset credentials for X.com and any linked accounts, particularly if multi-factor authentication was not enabled. Security teams should monitor for additional domains registered through the same registrar or resolving to the same IP range, as threat actors frequently reuse infrastructure. Organizations should also educate users on identifying brand impersonation tactics, such as scrutinizing domain names for slight misspellings or unusual subdomains.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260202-722A5D- Заголовок сохранённой страницы
- Welcome to nginx!
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Доступен → Недоступен
-
Статус домена
Недоступен → Доступен
-
Статус домена
Доступен → Недоступен
-
Статус домена
Недоступен → Доступен
-
Статус домена
Доступен → Недоступен
Технологии
Выявлено 2 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of t-mobile.mvbgp.cc · checked Apr 23, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание